It's a 32bits elf binary of some version of vsftpd, where it have been added a backdoor, they don't specify is an authentication backdoor, a special command or other stuff.
I started looking for something weird on the authentication routines, but I didn't found anything significant in a brief period of time, so I decided to do a bindiff, that was the key for locating the backdoor quickly. I do a quick diff of the strings with the command "strings bin | sort -u" and "vimdiff" and noticed that the backdoored binary has the symbol "execl" which is weird because is a call for executing elfs, don't needed for a ftp service, and weird that the compiled binary doesn't has that symbol.
Looking the xrefs of "execl" on IDA I found that code that is a clear backdoor, it create a socket, bind a port and duplicate the stdin, stdout and stderr to the socket and use the execl:
There are one xrefs to this function, the function that decides when trigger that is that kind of systems equations decision:
The backdoor was not on the authentication, it was a special command to trigger the backdoor, which is obfuscated on that systems equation, it was no needed to use a z3 equation solver because is a simple one and I did it by hand.
The equation:
cmd[0] = 69
cmd[1] = 78
cmd[1] + cmd[2] = 154
cmd[2] + cmd[3] = 202
cmd[3] + cmd[4] = 241
cmd[4] + cmd[5] = 233
cmd[5] + cmd[6] = 217
cmd[6] + cmd[7] = 218
cmd[7] + cmd[8] = 228
cmd[8] + cmd[9] = 212
cmd[9] + cmd[10] = 195
cmd[10] + cmd[11] = 195
cmd[11] + cmd[12] = 201
cmd[12] + cmd[13] = 207
cmd[13] + cmd[14] = 203
cmd[14] + cmd[15] = 215
cmd[15] + cmd[16] = 235
cmd[16] + cmd[17] = 242
The solution:
cmd[0] = 69
cmd[1] = 75
cmd[2] = 79
cmd[3] = 123
cmd[4] = 118
cmd[5] = 115
cmd[6] = 102
cmd[7] = 116
cmd[8] = 112
cmd[9] = 100
cmd[10] = 95
cmd[11] = 100
cmd[12] = 101
cmd[13] = 106
cmd[14] = 97
cmd[15] = 118
cmd[16] = 117
cmd[17] = 125
The flag:
EKO{vsftpd_dejavu}
The binary:
https://ctf.ekoparty.org/static/pre-ekoparty/backdoor
The binary:
https://ctf.ekoparty.org/static/pre-ekoparty/backdoor
Related posts
- Pentest Tools Alternative
- Hacker Hardware Tools
- Hacker Tools Online
- Hacking Tools Software
- Hacking Tools Windows 10
- Pentest Tools Alternative
- Pentest Tools Kali Linux
- Pentest Tools Alternative
- How To Make Hacking Tools
- Android Hack Tools Github
- Hacking Tools For Kali Linux
- Pentest Box Tools Download
- Hacking Tools For Windows Free Download
- Hack Rom Tools
- Hack Tool Apk
- Pentest Tools For Windows
- Pentest Tools For Windows
- Pentest Recon Tools
- Hacker Tools Software
- Nsa Hack Tools
- Hacking Apps
- Hacker Tools 2019
- Pentest Automation Tools
- Hacking Tools Software
- Pentest Tools Framework
- Hack App
- Pentest Tools Kali Linux
- Pentest Tools List
- Hacker Tools For Pc
- Hacker Techniques Tools And Incident Handling
- Hacker Tools Windows
- Pentest Tools Website
- Hacker Tools 2019
- Pentest Tools Download
- Hack Tools For Windows
- Hacker Tools For Pc
- Hacking Tools
- Hacking Tools Windows
- Pentest Tools Alternative
- Hacking App
- Best Hacking Tools 2020
- Pentest Automation Tools
- Hackers Toolbox
- Physical Pentest Tools
- Hack Tools Online
- Game Hacking
- Github Hacking Tools
- Hacking Tools Name
- Pentest Tools Find Subdomains
- Hack And Tools
- Pentest Tools Tcp Port Scanner
- Hacking Tools 2019
- Hack Tools For Pc
- Hacking Tools For Windows
- Pentest Tools Download
- Hacking Tools Online
- Github Hacking Tools
- Hacking Tools Free Download
- Hacker Search Tools
- What Is Hacking Tools
- Hackrf Tools
- Game Hacking
- Pentest Box Tools Download
- Hacker Search Tools
- Hack Tools Mac
- Pentest Tools Windows
- Pentest Tools Online
- Wifi Hacker Tools For Windows
- Pentest Tools Port Scanner
- Hacking Tools 2020
- Physical Pentest Tools
- Pentest Box Tools Download
- Hackers Toolbox
- Hacker Tools Free Download
- Hacking Tools Kit
- Pentest Tools Github
- Pentest Tools Review
- How To Install Pentest Tools In Ubuntu
- Hacks And Tools
- Pentest Tools Linux
- Game Hacking
- Computer Hacker
- Pentest Tools For Mac
- What Are Hacking Tools
- New Hack Tools
- Top Pentest Tools
- Pentest Tools For Ubuntu
- Hack Tools Online
- Hacker Tools For Windows
- Hacker Tools Github
- Hacking Tools Mac
- Bluetooth Hacking Tools Kali
- Hacking Tools Kit
- Hacking Tools For Windows Free Download
- Hackrf Tools
- Nsa Hack Tools Download
- Hacker Tools Windows
- Hacker Hardware Tools
- Pentest Tools Website
- Hack Apps
- Pentest Recon Tools
- Tools 4 Hack
- Hacker Tools 2020
- Best Hacking Tools 2019
- Pentest Tools Linux
- Pentest Tools Website
- Hacker Tools Free
- Hacker Tools Online
- Pentest Tools
- Hack Tool Apk No Root
- Pentest Tools Apk
- Pentest Tools Linux
- Hacking Tools For Windows
- Pentest Tools Tcp Port Scanner
- Hack Tools Pc
- How To Install Pentest Tools In Ubuntu
- Hacking Tools 2020
- Hack Tools
- Hacker Tools Hardware
- Hacker Tools Mac
- Pentest Tools Alternative
- Pentest Tools Android
- Hacking Tools Free Download
- Ethical Hacker Tools
- Hacking Tools Download
- Hacker Security Tools
- Hak5 Tools
- Hacker Tools Windows
- Hacking Tools For Mac
- Hacker Security Tools
- Computer Hacker
- Hacking Tools 2020
- World No 1 Hacker Software
- Hacking Tools For Windows 7
- Hack Tools For Windows
- Hacking Tools Hardware
- Hak5 Tools
- Pentest Tools For Mac
- Usb Pentest Tools
- Tools For Hacker
- Hacker Tools Apk
- Pentest Tools For Android
- Pentest Tools Free
- Nsa Hack Tools Download
- Hacking Tools Hardware
- Hacker Tools Free
- Nsa Hack Tools Download
- Hacker Security Tools
- Hack Tools For Windows
- Pentest Tools Android
- Hacking Tools For Beginners
- Pentest Tools Tcp Port Scanner
- Pentest Tools Android
- How To Install Pentest Tools In Ubuntu
- Github Hacking Tools
- Best Hacking Tools 2020
- Hack Tools For Mac
- Pentest Reporting Tools
- Hack Tools
- Pentest Tools Github
- Pentest Reporting Tools
- Pentest Tools For Mac
- Best Hacking Tools 2019
- Hacking Tools
- Hacker Techniques Tools And Incident Handling
- Hacking Tools Mac
- Install Pentest Tools Ubuntu
- Hacker Tools For Windows
- Pentest Tools List
- What Is Hacking Tools
- Hacking Tools For Kali Linux
- Hacking Tools For Windows 7
- Hacker Tool Kit
- Hacker
- New Hacker Tools
Do you need to increase your credit score?
ReplyDeleteDo you intend to upgrade your school grade?
Do you want to hack your cheating spouse Email, whatsapp, Facebook, instagram or any social network?
Do you need any information concerning any database.
Do you need to retrieve deleted files?
Do you need to clear your criminal records or DMV?
Do you want to remove any site or link from any blog?
you should contact this hacker, he is reliable and good at the hack jobs..
contact : cybergoldenhacker at gmail dot com